]> Untitled Git - lemmy.git/blob - crates/api_crud/src/post/update.rs
Dont return error in case optional auth is invalid (#2879)
[lemmy.git] / crates / api_crud / src / post / update.rs
1 use crate::PerformCrud;
2 use actix_web::web::Data;
3 use lemmy_api_common::{
4   context::LemmyContext,
5   post::{EditPost, PostResponse},
6   request::fetch_site_data,
7   utils::{check_community_ban, local_site_to_slur_regex, local_user_view_from_jwt},
8   websocket::UserOperationCrud,
9 };
10 use lemmy_db_schema::{
11   source::{
12     actor_language::CommunityLanguage,
13     local_site::LocalSite,
14     post::{Post, PostUpdateForm},
15   },
16   traits::Crud,
17   utils::{diesel_option_overwrite, naive_now},
18 };
19 use lemmy_utils::{
20   error::LemmyError,
21   utils::{
22     slurs::check_slurs_opt,
23     validation::{clean_url_params, is_valid_body_field, is_valid_post_title},
24   },
25   ConnectionId,
26 };
27
28 #[async_trait::async_trait(?Send)]
29 impl PerformCrud for EditPost {
30   type Response = PostResponse;
31
32   #[tracing::instrument(skip(context, websocket_id))]
33   async fn perform(
34     &self,
35     context: &Data<LemmyContext>,
36     websocket_id: Option<ConnectionId>,
37   ) -> Result<PostResponse, LemmyError> {
38     let data: &EditPost = self;
39     let local_user_view = local_user_view_from_jwt(&data.auth, context).await?;
40     let local_site = LocalSite::read(context.pool()).await?;
41
42     let data_url = data.url.as_ref();
43
44     // TODO No good way to handle a clear.
45     // Issue link: https://github.com/LemmyNet/lemmy/issues/2287
46     let url = Some(data_url.map(clean_url_params).map(Into::into));
47     let body = diesel_option_overwrite(&data.body);
48
49     let slur_regex = local_site_to_slur_regex(&local_site);
50     check_slurs_opt(&data.name, &slur_regex)?;
51     check_slurs_opt(&data.body, &slur_regex)?;
52
53     if let Some(name) = &data.name {
54       is_valid_post_title(name)?;
55     }
56
57     is_valid_body_field(&data.body)?;
58
59     let post_id = data.post_id;
60     let orig_post = Post::read(context.pool(), post_id).await?;
61
62     check_community_ban(
63       local_user_view.person.id,
64       orig_post.community_id,
65       context.pool(),
66     )
67     .await?;
68
69     // Verify that only the creator can edit
70     if !Post::is_post_creator(local_user_view.person.id, orig_post.creator_id) {
71       return Err(LemmyError::from_message("no_post_edit_allowed"));
72     }
73
74     // Fetch post links and Pictrs cached image
75     let data_url = data.url.as_ref();
76     let (metadata_res, thumbnail_url) =
77       fetch_site_data(context.client(), context.settings(), data_url).await;
78     let (embed_title, embed_description, embed_video_url) = metadata_res
79       .map(|u| (Some(u.title), Some(u.description), Some(u.embed_video_url)))
80       .unwrap_or_default();
81
82     let language_id = self.language_id;
83     CommunityLanguage::is_allowed_community_language(
84       context.pool(),
85       language_id,
86       orig_post.community_id,
87     )
88     .await?;
89
90     let post_form = PostUpdateForm::builder()
91       .name(data.name.clone())
92       .url(url)
93       .body(body)
94       .nsfw(data.nsfw)
95       .embed_title(embed_title)
96       .embed_description(embed_description)
97       .embed_video_url(embed_video_url)
98       .language_id(data.language_id)
99       .thumbnail_url(Some(thumbnail_url))
100       .updated(Some(Some(naive_now())))
101       .build();
102
103     let post_id = data.post_id;
104     let res = Post::update(context.pool(), post_id, &post_form).await;
105     if let Err(e) = res {
106       let err_type = if e.to_string() == "value too long for type character varying(200)" {
107         "post_title_too_long"
108       } else {
109         "couldnt_update_post"
110       };
111
112       return Err(LemmyError::from_error_message(e, err_type));
113     }
114
115     context
116       .send_post_ws_message(
117         &UserOperationCrud::EditPost,
118         data.post_id,
119         websocket_id,
120         Some(local_user_view.person.id),
121       )
122       .await
123   }
124 }